PRIVACY POLICY

HIFILAT SmartAudio Manager
Version 1.1 · In effect since: May 2026
Last updated: June 2026 (updated for Chile's Law No. 21.719)


EXECUTIVE SUMMARY (TL;DR)

HIFILAT SmartAudio Manager runs 100% on your computer.

We do not collect data. We have no servers. We have no user accounts. Your music never leaves your disk.

The only network connections the app makes are voluntary queries to MusicBrainz (metadata) and LRCLIB (lyrics), and only when you request that information. You control when and for what. In addition, on launch it checks anonymously whether a new version exists (without sending any of your data; can be turned off in Settings).


1. INTRODUCTION

This Privacy Policy describes how HIFILAT SpA ("HIFILAT", "we") handles data related to the use of the SmartAudio Manager software (hereinafter, "the Software").

This policy aligns with the principles established in:


2. GUIDING PRINCIPLES

HIFILAT is committed to the following principles:


3. DATA CONTROLLER


4. DATA THE SOFTWARE PROCESSES LOCALLY

The following data is processed only on your computer and is never transmitted to HIFILAT or to any server:

CategoryExamplesStorage
Audio filesFLAC, AIFF, MP3, AACIn the folders you choose
Audio metadataTitle, artist, album, year, genre, cover artInside the files (tags)
LyricsSynced (.lrc) or embeddedIn .lrc files alongside or in tags
SettingsLibrary folders, defaults, languageconfig.json in the app's data folder (macOS: ~/Library/Application Support/HIFILAT/SmartAudio/; Windows: %APPDATA%\HIFILAT\SmartAudio\)
LicenseActivation keylicense.key in the same app data folder
LogsApplication eventshifilat.log in the same app data folder
Trial counterNumber of songs used in the usage-based trial (no personal data)trial.json in the same app data folder
Metadata cachePre-processed FLAC metadata (speeds up startup)library_index.db (SQLite) in the app data folder, plus an in-RAM cache during execution; it regenerates itself if deleted

HIFILAT has no access to this data. It is not synced, not backed up, not transmitted.

4.1 Personal data that may become embedded or that you export


5. DATA SENT TO EXTERNAL SERVICES

The Software makes outbound network connections only when you explicitly request an action that requires it (the only exception is the update check, §5.3: automatic but anonymous and able to be turned off):

5.1 MusicBrainz (https://musicbrainz.org)

When it connects:

What is sent:

What is NOT sent:

MusicBrainz privacy policy: https://metabrainz.org/privacy

5.2 LRCLIB (https://lrclib.net)

When it connects:

What is sent:

What is NOT sent:


5.3 Update check (the only automatic connection)

When it connects:

What is sent:

What is NOT sent:

You can turn it off in Settings → Check for updates. If it is off or there is no connection, the app works the same.


6. THERE ARE NO OTHER CONNECTIONS

The Software does NOT make any other network connection. In particular:

You can verify this by inspecting the source code or monitoring network traffic with tools such as Little Snitch or Wireshark.


7. LEGAL BASIS FOR PROCESSING

When data protection regulations such as the GDPR apply, the applicable legal bases are:


8. COOKIES AND SIMILAR TECHNOLOGIES

The Software is a local desktop application that runs on localhost. It does not use tracking cookies, web beacons, advertising identifiers, or similar technologies.

The browser may store technical cookies necessary for the local session (page state), which are not transmitted to HIFILAT.


9. DATA RETENTION

DataRetention
Audio files and metadataIndefinite — controlled by the user
Settings (config.json)Until the user deletes them
License (license.key)Until the user revokes it or the app is uninstalled
Logs (hifilat.log)Cumulative — the user can delete it manually
Trial counter (trial.json)Until a license is purchased or the file is deleted
Metadata cache (library_index.db)Until the user deletes it — it regenerates itself
In-RAM cacheOnly during the app's execution
Data sent to MusicBrainz/LRCLIBSubject to the retention policies of those services

HIFILAT does not retain any user data on its own systems, because it has no systems that receive user data.


10. SECURITY

The Software implements the following technical measures to protect your data:

Additionally, we recommend that the user:


11. USER RIGHTS

Under the applicable data protection laws, you have the right to:

RightHow to exercise it
AccessAll the information is on your device — accessible through the file explorer (Finder)
RectificationEdit the configuration files or the metadata directly
ErasureDelete config.json, license.key, hifilat.log, trial.json, or library_index.db whenever you want
RestrictionClose the app or disable queries to external services by not using them
PortabilityYour data is in open formats (JSON, plain text, FLAC)
ObjectionStop using the app

Since HIFILAT does not process your data on its servers, there is no need to submit formal requests — you have full and direct control over the data that lives on your device.

Channel to exercise your rights: if you need to exercise any of these rights over data that HIFILAT does handle (for example, your email if you wrote to us or subscribed to our newsletter), write to contacto@hifilat.com; we will respond within the timeframes required by the applicable regulations.

Complaint to the authority: in Chile, you also have the right to file complaints with the Personal Data Protection Agency (Agencia de Protección de Datos Personales, the authority created by Law No. 21.719).

Automated decisions and profiling: HIFILAT does not make automated decisions or build profiles about users.

For data sent to MusicBrainz or LRCLIB, you must contact those services directly.


12. MINORS

The Software is not directed at minors. If you are under 18 years of age (or under the legal age in your jurisdiction), you must use the Software only under the supervision of a responsible adult.

We do not knowingly collect personal data from minors. If we detect that a minor has activated a license without adult authorization, we may suspend its use.


13. INTERNATIONAL TRANSFERS

Since HIFILAT does not collect data, we do not carry out international transfers as such. However, voluntary queries to:

involve international transfers under the user's direct control. These services have their own data protection safeguards.

Website and newsletter: if you contact us through the website form or subscribe to our newsletter, your email is handled through our email marketing provider (with servers outside Chile). That processing is governed by the Website Privacy Policy (https://hifilat.com), which complements this Software policy.


14. SECURITY INCIDENTS

If we become aware of a security vulnerability in the Software:

If you discover a vulnerability, please report it responsibly to contacto@hifilat.com before disclosing it publicly.


15. MODIFICATIONS TO THIS POLICY

This Policy may be updated. Modifications will be notified through:

Material changes require 15 days from notification to take effect. Minor changes (wording corrections, clarity) may be immediate.


16. CONTACT

For any inquiry related to this Privacy Policy or the processing of data:


17. ADHERENCE TO REGULATIONS

HIFILAT strives to comply with the applicable personal data protection regulations, including but not limited to:

In jurisdictions with stricter regulations, the provisions most protective of the user will prevail.


18. LANGUAGE

The original version of this Policy is written in Spanish. Any translation into another language is provided for informational purposes only; in the event of a discrepancy, the Spanish version shall prevail.


© 2025–2026 HIFILAT SpA. All rights reserved.

Your music, your privacy, your control.